The nats-senhasegura service log repeatedly records this error.
Symptom
[ERR] 127.0.0.1:51318 - cid:516 - TLS handshake error: remote error: tls: expired certificate
To confirm, run:
sudo journalctl -u nats-senhasegura --since "2026-10-01" | grep "expired certificate"
Solution
Alert
Do not restart the appliance or its services before applying the fix. Restarting does not solve the problem and makes the failure worse.
- Apply the fix described in Segura® maintenance script for on-prem customers.
- Run the verification command again. No new messages should appear after the time of the fix.
For more information
- Segura® maintenance script for on-prem customers
- "Nats error: Failed to connect: Error enabling TLS" in the notification panel
- "NatsProcess loop error: Failed to enable TLS: SSL verify failed (errCode=1014)" in orbini-server.log
If you are still having trouble, open a ticket with Segura® support using code SOP 140926.